Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Helios Calendar "username" Cross-Site Scripting Vulnerability

BugsAlert Home > Helios Calendar "username" Cross-Site Scripting Vulnerability
 
 

Ivan Sanchez and Maximiliano Soler have reported a vulnerability in Helios Calendar, which can be exploited by malicious people to conduct cross-site scripting attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/27490/

Learn more about Helios Calendar "username" Cross-Site Scripting Vulnerability
 
Tags: helios calendar username cross-site scripting vulnerability

Related Items

      CVE-2008-3572 (Pligg CMS)

      SUSE update for kernel

      FrSIRT - Gentoo Security Update Fixes VLC Code Execution Vulnerabilities

      Several XSS, a cross-domain redirect and a webroot disclosure on Spyce - Python Server Pages (PSP)

      XnView / NConvert Radiance RGBE Buffer Overflow

      CVE-2008-1566 (Applications Manager)

      Kerio WinRoute Firewall Proxy Server Unspecified Security Bypass

 

Pixel